If your organization already uses a third-party secure web gateway or CASB solution
(such as Zscaler or Netskope) to inspect general web traffic, you can chain that gateway
with TrendAI Vision One™ to add AI-specific inspection and access control. Configure your existing gateway
to forward generative AI (GenAI) traffic — for example, traffic destined for ChatGPT,
Microsoft Copilot, or Google Gemini — to the TrendAI Vision One™ Internet Access Gateway as an upstream proxy. Your existing gateway continues to
handle and inspect all other general web traffic.
In this deployment, end users authenticate with TrendAI Vision One™ through the standard browser-based authentication flow when their GenAI traffic is
forwarded to the Internet Access Gateway.
To integrate a third-party proxy with AI Secure Access, you need to:
- Configure an upstream proxy (forwarding) rule on your third-party gateway that sends selected GenAI traffic to the TrendAI Vision One™ Internet Access Gateway.
- Import the TrendAI Vision One™ HTTPS Inspection certificate into your third-party gateway as a trusted certificate authority (CA), so the gateway can forward decrypted HTTPS traffic without certificate errors.
- Create or confirm AI Secure Access rules in TrendAI Vision One™ to enforce inspection and access control policy on the forwarded traffic.
The exact configuration steps vary by gateway vendor. Refer to your gateway vendor's
documentation for vendor-specific menu paths and settings.
